pat.c 28.2 KB
Newer Older
1 2 3 4 5 6 7 8 9
/*
 * Handle caching attributes in page tables (PAT)
 *
 * Authors: Venkatesh Pallipadi <venkatesh.pallipadi@intel.com>
 *          Suresh B Siddha <suresh.b.siddha@intel.com>
 *
 * Loosely based on earlier PAT patchset from Eric Biederman and Andi Kleen.
 */

I
Ingo Molnar 已提交
10 11 12
#include <linux/seq_file.h>
#include <linux/bootmem.h>
#include <linux/debugfs.h>
13
#include <linux/kernel.h>
14
#include <linux/module.h>
15
#include <linux/pfn_t.h>
16
#include <linux/slab.h>
I
Ingo Molnar 已提交
17
#include <linux/mm.h>
18
#include <linux/fs.h>
19
#include <linux/rbtree.h>
20

I
Ingo Molnar 已提交
21
#include <asm/cacheflush.h>
22
#include <asm/processor.h>
I
Ingo Molnar 已提交
23
#include <asm/tlbflush.h>
24
#include <asm/x86_init.h>
25 26
#include <asm/pgtable.h>
#include <asm/fcntl.h>
I
Ingo Molnar 已提交
27
#include <asm/e820.h>
28
#include <asm/mtrr.h>
I
Ingo Molnar 已提交
29 30 31
#include <asm/page.h>
#include <asm/msr.h>
#include <asm/pat.h>
32
#include <asm/io.h>
33

34
#include "pat_internal.h"
35
#include "mm_internal.h"
36

37 38 39
#undef pr_fmt
#define pr_fmt(fmt) "" fmt

40 41
static bool boot_cpu_done;

42
static int __read_mostly __pat_enabled = IS_ENABLED(CONFIG_X86_PAT);
43

44
static inline void pat_disable(const char *reason)
45
{
46
	__pat_enabled = 0;
47
	pr_info("x86/PAT: %s\n", reason);
48 49
}

A
Andrew Morton 已提交
50
static int __init nopat(char *str)
51
{
52
	pat_disable("PAT support disabled.");
53 54
	return 0;
}
55
early_param("nopat", nopat);
56 57

bool pat_enabled(void)
58
{
59
	return !!__pat_enabled;
60
}
61
EXPORT_SYMBOL_GPL(pat_enabled);
62

63
int pat_debug_enable;
I
Ingo Molnar 已提交
64

65 66
static int __init pat_debug_setup(char *str)
{
67
	pat_debug_enable = 1;
68 69 70 71
	return 0;
}
__setup("debugpat", pat_debug_setup);

72 73
#ifdef CONFIG_X86_PAT
/*
74 75 76 77 78 79 80 81 82 83
 * X86 PAT uses page flags arch_1 and uncached together to keep track of
 * memory type of pages that have backing page struct.
 *
 * X86 PAT supports 4 different memory types:
 *  - _PAGE_CACHE_MODE_WB
 *  - _PAGE_CACHE_MODE_WC
 *  - _PAGE_CACHE_MODE_UC_MINUS
 *  - _PAGE_CACHE_MODE_WT
 *
 * _PAGE_CACHE_MODE_WB is the default type.
84 85
 */

86
#define _PGMT_WB		0
87 88
#define _PGMT_WC		(1UL << PG_arch_1)
#define _PGMT_UC_MINUS		(1UL << PG_uncached)
89
#define _PGMT_WT		(1UL << PG_uncached | 1UL << PG_arch_1)
90 91 92 93 94 95 96
#define _PGMT_MASK		(1UL << PG_uncached | 1UL << PG_arch_1)
#define _PGMT_CLEAR_MASK	(~_PGMT_MASK)

static inline enum page_cache_mode get_page_memtype(struct page *pg)
{
	unsigned long pg_flags = pg->flags & _PGMT_MASK;

97 98
	if (pg_flags == _PGMT_WB)
		return _PAGE_CACHE_MODE_WB;
99 100 101 102 103
	else if (pg_flags == _PGMT_WC)
		return _PAGE_CACHE_MODE_WC;
	else if (pg_flags == _PGMT_UC_MINUS)
		return _PAGE_CACHE_MODE_UC_MINUS;
	else
104
		return _PAGE_CACHE_MODE_WT;
105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120
}

static inline void set_page_memtype(struct page *pg,
				    enum page_cache_mode memtype)
{
	unsigned long memtype_flags;
	unsigned long old_flags;
	unsigned long new_flags;

	switch (memtype) {
	case _PAGE_CACHE_MODE_WC:
		memtype_flags = _PGMT_WC;
		break;
	case _PAGE_CACHE_MODE_UC_MINUS:
		memtype_flags = _PGMT_UC_MINUS;
		break;
121 122
	case _PAGE_CACHE_MODE_WT:
		memtype_flags = _PGMT_WT;
123
		break;
124
	case _PAGE_CACHE_MODE_WB:
125
	default:
126
		memtype_flags = _PGMT_WB;
127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145
		break;
	}

	do {
		old_flags = pg->flags;
		new_flags = (old_flags & _PGMT_CLEAR_MASK) | memtype_flags;
	} while (cmpxchg(&pg->flags, old_flags, new_flags) != old_flags);
}
#else
static inline enum page_cache_mode get_page_memtype(struct page *pg)
{
	return -1;
}
static inline void set_page_memtype(struct page *pg,
				    enum page_cache_mode memtype)
{
}
#endif

146 147 148 149 150 151
enum {
	PAT_UC = 0,		/* uncached */
	PAT_WC = 1,		/* Write combining */
	PAT_WT = 4,		/* Write Through */
	PAT_WP = 5,		/* Write Protected */
	PAT_WB = 6,		/* Write Back (default) */
152
	PAT_UC_MINUS = 7,	/* UC, but can be overridden by MTRR */
153 154
};

155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183
#define CM(c) (_PAGE_CACHE_MODE_ ## c)

static enum page_cache_mode pat_get_cache_mode(unsigned pat_val, char *msg)
{
	enum page_cache_mode cache;
	char *cache_mode;

	switch (pat_val) {
	case PAT_UC:       cache = CM(UC);       cache_mode = "UC  "; break;
	case PAT_WC:       cache = CM(WC);       cache_mode = "WC  "; break;
	case PAT_WT:       cache = CM(WT);       cache_mode = "WT  "; break;
	case PAT_WP:       cache = CM(WP);       cache_mode = "WP  "; break;
	case PAT_WB:       cache = CM(WB);       cache_mode = "WB  "; break;
	case PAT_UC_MINUS: cache = CM(UC_MINUS); cache_mode = "UC- "; break;
	default:           cache = CM(WB);       cache_mode = "WB  "; break;
	}

	memcpy(msg, cache_mode, 4);

	return cache;
}

#undef CM

/*
 * Update the cache mode to pgprot translation tables according to PAT
 * configuration.
 * Using lower indices is preferred, so we start with highest index.
 */
184
void __init_cache_modes(u64 pat)
185 186 187
{
	enum page_cache_mode cache;
	char pat_msg[33];
188
	int i;
189 190 191 192 193 194 195

	pat_msg[32] = 0;
	for (i = 7; i >= 0; i--) {
		cache = pat_get_cache_mode((pat >> (i * 8)) & 7,
					   pat_msg + 4 * i);
		update_cache_mode_entry(i, cache);
	}
196
	pr_info("x86/PAT: Configuration [0-7]: %s\n", pat_msg);
197 198
}

199
#define PAT(x, y)	((u64)PAT_ ## y << ((x)*8))
200

201
static void pat_bsp_init(u64 pat)
202
{
203 204
	u64 tmp_pat;

205 206 207 208
	if (!cpu_has_pat) {
		pat_disable("PAT not supported by CPU.");
		return;
	}
209

210 211
	rdmsrl(MSR_IA32_CR_PAT, tmp_pat);
	if (!tmp_pat) {
212
		pat_disable("PAT MSR is 0, disabled.");
213
		return;
214 215 216
	}

	wrmsrl(MSR_IA32_CR_PAT, pat);
217

218
	__init_cache_modes(pat);
219 220 221 222
}

static void pat_ap_init(u64 pat)
{
223
	if (!cpu_has_pat) {
224 225 226 227 228
		/*
		 * If this happens we are on a secondary CPU, but switched to
		 * PAT on the boot CPU. We have no way to undo PAT.
		 */
		panic("x86/PAT: PAT enabled, but not supported by secondary CPU\n");
229
	}
230

231 232 233
	wrmsrl(MSR_IA32_CR_PAT, pat);
}

234
static void init_cache_modes(void)
235
{
236 237
	u64 pat = 0;
	static int init_cm_done;
238

239 240 241 242 243 244 245 246 247 248 249 250 251 252 253 254 255
	if (init_cm_done)
		return;

	if (boot_cpu_has(X86_FEATURE_PAT)) {
		/*
		 * CPU supports PAT. Set PAT table to be consistent with
		 * PAT MSR. This case supports "nopat" boot option, and
		 * virtual machine environments which support PAT without
		 * MTRRs. In specific, Xen has unique setup to PAT MSR.
		 *
		 * If PAT MSR returns 0, it is considered invalid and emulates
		 * as No PAT.
		 */
		rdmsrl(MSR_IA32_CR_PAT, pat);
	}

	if (!pat) {
256 257
		/*
		 * No PAT. Emulate the PAT table that corresponds to the two
258 259
		 * cache bits, PWT (Write Through) and PCD (Cache Disable).
		 * This setup is also the same as the BIOS default setup.
260
		 *
261
		 * PTE encoding:
262 263 264 265 266 267 268 269 270 271 272 273 274 275
		 *
		 *       PCD
		 *       |PWT  PAT
		 *       ||    slot
		 *       00    0    WB : _PAGE_CACHE_MODE_WB
		 *       01    1    WT : _PAGE_CACHE_MODE_WT
		 *       10    2    UC-: _PAGE_CACHE_MODE_UC_MINUS
		 *       11    3    UC : _PAGE_CACHE_MODE_UC
		 *
		 * NOTE: When WC or WP is used, it is redirected to UC- per
		 * the default setup in __cachemode2pte_tbl[].
		 */
		pat = PAT(0, WB) | PAT(1, WT) | PAT(2, UC_MINUS) | PAT(3, UC) |
		      PAT(4, WB) | PAT(5, WT) | PAT(6, UC_MINUS) | PAT(7, UC);
276 277 278 279 280 281 282 283 284 285 286 287 288 289 290 291 292 293 294 295 296 297 298 299 300 301
	}

	__init_cache_modes(pat);

	init_cm_done = 1;
}

/**
 * pat_init - Initialize PAT MSR and PAT table
 *
 * This function initializes PAT MSR and PAT table with an OS-defined value
 * to enable additional cache attributes, WC and WT.
 *
 * This function must be called on all CPUs using the specific sequence of
 * operations defined in Intel SDM. mtrr_rendezvous_handler() provides this
 * procedure for PAT.
 */
void pat_init(void)
{
	u64 pat;
	struct cpuinfo_x86 *c = &boot_cpu_data;

	if (!pat_enabled()) {
		init_cache_modes();
		return;
	}
302

303 304 305
	if ((c->x86_vendor == X86_VENDOR_INTEL) &&
	    (((c->x86 == 0x6) && (c->x86_model <= 0xd)) ||
	     ((c->x86 == 0xf) && (c->x86_model <= 0x6)))) {
306
		/*
307 308 309 310 311 312
		 * PAT support with the lower four entries. Intel Pentium 2,
		 * 3, M, and 4 are affected by PAT errata, which makes the
		 * upper four entries unusable. To be on the safe side, we don't
		 * use those.
		 *
		 *  PTE encoding:
313 314
		 *      PAT
		 *      |PCD
315 316 317 318 319 320
		 *      ||PWT  PAT
		 *      |||    slot
		 *      000    0    WB : _PAGE_CACHE_MODE_WB
		 *      001    1    WC : _PAGE_CACHE_MODE_WC
		 *      010    2    UC-: _PAGE_CACHE_MODE_UC_MINUS
		 *      011    3    UC : _PAGE_CACHE_MODE_UC
321
		 * PAT bit unused
322 323 324
		 *
		 * NOTE: When WT or WP is used, it is redirected to UC- per
		 * the default setup in __cachemode2pte_tbl[].
325 326 327
		 */
		pat = PAT(0, WB) | PAT(1, WC) | PAT(2, UC_MINUS) | PAT(3, UC) |
		      PAT(4, WB) | PAT(5, WC) | PAT(6, UC_MINUS) | PAT(7, UC);
328 329 330 331 332 333 334 335 336 337 338 339 340 341 342 343 344 345 346 347 348 349 350 351 352 353 354 355 356
	} else {
		/*
		 * Full PAT support.  We put WT in slot 7 to improve
		 * robustness in the presence of errata that might cause
		 * the high PAT bit to be ignored.  This way, a buggy slot 7
		 * access will hit slot 3, and slot 3 is UC, so at worst
		 * we lose performance without causing a correctness issue.
		 * Pentium 4 erratum N46 is an example for such an erratum,
		 * although we try not to use PAT at all on affected CPUs.
		 *
		 *  PTE encoding:
		 *      PAT
		 *      |PCD
		 *      ||PWT  PAT
		 *      |||    slot
		 *      000    0    WB : _PAGE_CACHE_MODE_WB
		 *      001    1    WC : _PAGE_CACHE_MODE_WC
		 *      010    2    UC-: _PAGE_CACHE_MODE_UC_MINUS
		 *      011    3    UC : _PAGE_CACHE_MODE_UC
		 *      100    4    WB : Reserved
		 *      101    5    WC : Reserved
		 *      110    6    UC-: Reserved
		 *      111    7    WT : _PAGE_CACHE_MODE_WT
		 *
		 * The reserved slots are unused, but mapped to their
		 * corresponding types in the presence of PAT errata.
		 */
		pat = PAT(0, WB) | PAT(1, WC) | PAT(2, UC_MINUS) | PAT(3, UC) |
		      PAT(4, WB) | PAT(5, WC) | PAT(6, UC_MINUS) | PAT(7, WT);
357
	}
358

359 360 361 362 363
	if (!boot_cpu_done) {
		pat_bsp_init(pat);
		boot_cpu_done = true;
	} else {
		pat_ap_init(pat);
364
	}
365 366 367 368
}

#undef PAT

369
static DEFINE_SPINLOCK(memtype_lock);	/* protects memtype accesses */
370

371 372 373 374 375 376 377
/*
 * Does intersection of PAT memory type and MTRR memory type and returns
 * the resulting memory type as PAT understands it.
 * (Type in pat and mtrr will not have same value)
 * The intersection is based on "Effective Memory Type" tables in IA-32
 * SDM vol 3a
 */
378 379
static unsigned long pat_x_mtrr_type(u64 start, u64 end,
				     enum page_cache_mode req_type)
380
{
381 382 383 384
	/*
	 * Look for MTRR hint to get the effective type in case where PAT
	 * request is for WB.
	 */
385
	if (req_type == _PAGE_CACHE_MODE_WB) {
386
		u8 mtrr_type, uniform;
387

388
		mtrr_type = mtrr_type_lookup(start, end, &uniform);
389
		if (mtrr_type != MTRR_TYPE_WRBACK)
390
			return _PAGE_CACHE_MODE_UC_MINUS;
391

392
		return _PAGE_CACHE_MODE_WB;
393 394 395
	}

	return req_type;
396 397
}

398 399 400 401 402 403 404 405 406 407 408 409 410 411 412 413 414 415
struct pagerange_state {
	unsigned long		cur_pfn;
	int			ram;
	int			not_ram;
};

static int
pagerange_is_ram_callback(unsigned long initial_pfn, unsigned long total_nr_pages, void *arg)
{
	struct pagerange_state *state = arg;

	state->not_ram	|= initial_pfn > state->cur_pfn;
	state->ram	|= total_nr_pages > 0;
	state->cur_pfn	 = initial_pfn + total_nr_pages;

	return state->ram && state->not_ram;
}

416
static int pat_pagerange_is_ram(resource_size_t start, resource_size_t end)
417
{
418 419 420 421 422 423 424 425 426 427 428 429 430 431 432 433 434 435
	int ret = 0;
	unsigned long start_pfn = start >> PAGE_SHIFT;
	unsigned long end_pfn = (end + PAGE_SIZE - 1) >> PAGE_SHIFT;
	struct pagerange_state state = {start_pfn, 0, 0};

	/*
	 * For legacy reasons, physical address range in the legacy ISA
	 * region is tracked as non-RAM. This will allow users of
	 * /dev/mem to map portions of legacy ISA region, even when
	 * some of those portions are listed(or not even listed) with
	 * different e820 types(RAM/reserved/..)
	 */
	if (start_pfn < ISA_END_ADDRESS >> PAGE_SHIFT)
		start_pfn = ISA_END_ADDRESS >> PAGE_SHIFT;

	if (start_pfn < end_pfn) {
		ret = walk_system_ram_range(start_pfn, end_pfn - start_pfn,
				&state, pagerange_is_ram_callback);
436 437
	}

438
	return (ret > 0) ? -1 : (state.ram ? 1 : 0);
439 440
}

441
/*
442
 * For RAM pages, we use page flags to mark the pages with appropriate type.
443 444 445 446
 * The page flags are limited to four types, WB (default), WC, WT and UC-.
 * WP request fails with -EINVAL, and UC gets redirected to UC-.  Setting
 * a new memory type is only allowed for a page mapped with the default WB
 * type.
447 448 449 450
 *
 * Here we do two passes:
 * - Find the memtype of all the pages in the range, look for any conflicts.
 * - In case of no conflicts, set the new memtype for pages in the range.
451
 */
452 453 454
static int reserve_ram_pages_type(u64 start, u64 end,
				  enum page_cache_mode req_type,
				  enum page_cache_mode *new_type)
455 456
{
	struct page *page;
457 458
	u64 pfn;

459
	if (req_type == _PAGE_CACHE_MODE_WP) {
460 461 462 463 464
		if (new_type)
			*new_type = _PAGE_CACHE_MODE_UC_MINUS;
		return -EINVAL;
	}

465
	if (req_type == _PAGE_CACHE_MODE_UC) {
466 467
		/* We do not support strong UC */
		WARN_ON_ONCE(1);
468
		req_type = _PAGE_CACHE_MODE_UC_MINUS;
469
	}
470 471

	for (pfn = (start >> PAGE_SHIFT); pfn < (end >> PAGE_SHIFT); ++pfn) {
472
		enum page_cache_mode type;
473

474 475
		page = pfn_to_page(pfn);
		type = get_page_memtype(page);
476
		if (type != _PAGE_CACHE_MODE_WB) {
477
			pr_info("x86/PAT: reserve_ram_pages_type failed [mem %#010Lx-%#010Lx], track 0x%x, req 0x%x\n",
478
				start, end - 1, type, req_type);
479 480 481 482 483
			if (new_type)
				*new_type = type;

			return -EBUSY;
		}
484 485
	}

486 487 488 489
	if (new_type)
		*new_type = req_type;

	for (pfn = (start >> PAGE_SHIFT); pfn < (end >> PAGE_SHIFT); ++pfn) {
490
		page = pfn_to_page(pfn);
491
		set_page_memtype(page, req_type);
492
	}
493
	return 0;
494 495 496 497 498
}

static int free_ram_pages_type(u64 start, u64 end)
{
	struct page *page;
499
	u64 pfn;
500 501 502

	for (pfn = (start >> PAGE_SHIFT); pfn < (end >> PAGE_SHIFT); ++pfn) {
		page = pfn_to_page(pfn);
503
		set_page_memtype(page, _PAGE_CACHE_MODE_WB);
504 505 506 507
	}
	return 0;
}

508 509
/*
 * req_type typically has one of the:
510 511 512 513
 * - _PAGE_CACHE_MODE_WB
 * - _PAGE_CACHE_MODE_WC
 * - _PAGE_CACHE_MODE_UC_MINUS
 * - _PAGE_CACHE_MODE_UC
514
 * - _PAGE_CACHE_MODE_WT
515
 *
516 517 518
 * If new_type is NULL, function will return an error if it cannot reserve the
 * region with req_type. If new_type is non-NULL, function will return
 * available type in new_type in case of no error. In case of any error
519 520
 * it will return a negative return value.
 */
521 522
int reserve_memtype(u64 start, u64 end, enum page_cache_mode req_type,
		    enum page_cache_mode *new_type)
523
{
524
	struct memtype *new;
525
	enum page_cache_mode actual_type;
526
	int is_range_ram;
I
Ingo Molnar 已提交
527
	int err = 0;
528

I
Ingo Molnar 已提交
529
	BUG_ON(start >= end); /* end is exclusive */
530

531
	if (!pat_enabled()) {
532
		/* This is identical to page table setting without PAT */
533 534
		if (new_type)
			*new_type = req_type;
535 536 537 538
		return 0;
	}

	/* Low ISA region is always mapped WB in page table. No need to track */
539
	if (x86_platform.is_untracked_pat_range(start, end)) {
540
		if (new_type)
541
			*new_type = _PAGE_CACHE_MODE_WB;
542 543 544
		return 0;
	}

545 546 547 548 549 550
	/*
	 * Call mtrr_lookup to get the type hint. This is an
	 * optimization for /dev/mem mmap'ers into WB memory (BIOS
	 * tools and ACPI tools). Use WB request for WB memory and use
	 * UC_MINUS otherwise.
	 */
551
	actual_type = pat_x_mtrr_type(start, end, req_type);
552

553 554 555
	if (new_type)
		*new_type = actual_type;

556
	is_range_ram = pat_pagerange_is_ram(start, end);
557 558 559 560 561 562
	if (is_range_ram == 1) {

		err = reserve_ram_pages_type(start, end, req_type, new_type);

		return err;
	} else if (is_range_ram < 0) {
563
		return -EINVAL;
564
	}
565

566
	new  = kzalloc(sizeof(struct memtype), GFP_KERNEL);
567
	if (!new)
568 569
		return -ENOMEM;

I
Ingo Molnar 已提交
570 571 572
	new->start	= start;
	new->end	= end;
	new->type	= actual_type;
573 574 575

	spin_lock(&memtype_lock);

576
	err = rbt_memtype_check_insert(new, new_type);
577
	if (err) {
578 579 580
		pr_info("x86/PAT: reserve_memtype failed [mem %#010Lx-%#010Lx], track %s, req %s\n",
			start, end - 1,
			cattr_name(new->type), cattr_name(req_type));
581
		kfree(new);
582
		spin_unlock(&memtype_lock);
I
Ingo Molnar 已提交
583

584 585 586 587
		return err;
	}

	spin_unlock(&memtype_lock);
588

589 590
	dprintk("reserve_memtype added [mem %#010Lx-%#010Lx], track %s, req %s, ret %s\n",
		start, end - 1, cattr_name(new->type), cattr_name(req_type),
591 592
		new_type ? cattr_name(*new_type) : "-");

593 594 595 596 597 598
	return err;
}

int free_memtype(u64 start, u64 end)
{
	int err = -EINVAL;
599
	int is_range_ram;
600
	struct memtype *entry;
601

602
	if (!pat_enabled())
603 604 605
		return 0;

	/* Low ISA region is always mapped WB. No need to track */
606
	if (x86_platform.is_untracked_pat_range(start, end))
607 608
		return 0;

609
	is_range_ram = pat_pagerange_is_ram(start, end);
610 611 612 613 614 615
	if (is_range_ram == 1) {

		err = free_ram_pages_type(start, end);

		return err;
	} else if (is_range_ram < 0) {
616
		return -EINVAL;
617
	}
618

619
	spin_lock(&memtype_lock);
620
	entry = rbt_memtype_erase(start, end);
621 622
	spin_unlock(&memtype_lock);

623
	if (IS_ERR(entry)) {
624 625
		pr_info("x86/PAT: %s:%d freeing invalid memtype [mem %#010Lx-%#010Lx]\n",
			current->comm, current->pid, start, end - 1);
626
		return -EINVAL;
627
	}
628

629 630
	kfree(entry);

631
	dprintk("free_memtype request [mem %#010Lx-%#010Lx]\n", start, end - 1);
I
Ingo Molnar 已提交
632

633
	return 0;
634 635
}

636

637 638 639 640 641 642
/**
 * lookup_memtype - Looksup the memory type for a physical address
 * @paddr: physical address of which memory type needs to be looked up
 *
 * Only to be called when PAT is enabled
 *
643
 * Returns _PAGE_CACHE_MODE_WB, _PAGE_CACHE_MODE_WC, _PAGE_CACHE_MODE_UC_MINUS
644
 * or _PAGE_CACHE_MODE_WT.
645
 */
646
static enum page_cache_mode lookup_memtype(u64 paddr)
647
{
648
	enum page_cache_mode rettype = _PAGE_CACHE_MODE_WB;
649 650
	struct memtype *entry;

651
	if (x86_platform.is_untracked_pat_range(paddr, paddr + PAGE_SIZE))
652 653 654 655 656
		return rettype;

	if (pat_pagerange_is_ram(paddr, paddr + PAGE_SIZE)) {
		struct page *page;

657 658
		page = pfn_to_page(paddr >> PAGE_SHIFT);
		return get_page_memtype(page);
659 660 661 662
	}

	spin_lock(&memtype_lock);

663
	entry = rbt_memtype_lookup(paddr);
664 665 666
	if (entry != NULL)
		rettype = entry->type;
	else
667
		rettype = _PAGE_CACHE_MODE_UC_MINUS;
668 669 670 671 672

	spin_unlock(&memtype_lock);
	return rettype;
}

673 674 675 676 677 678 679 680 681 682 683
/**
 * io_reserve_memtype - Request a memory type mapping for a region of memory
 * @start: start (physical address) of the region
 * @end: end (physical address) of the region
 * @type: A pointer to memtype, with requested type. On success, requested
 * or any other compatible type that was available for the region is returned
 *
 * On success, returns 0
 * On failure, returns non-zero
 */
int io_reserve_memtype(resource_size_t start, resource_size_t end,
684
			enum page_cache_mode *type)
685
{
686
	resource_size_t size = end - start;
687 688
	enum page_cache_mode req_type = *type;
	enum page_cache_mode new_type;
689 690
	int ret;

691
	WARN_ON_ONCE(iomem_map_sanity_check(start, size));
692 693 694 695 696

	ret = reserve_memtype(start, end, req_type, &new_type);
	if (ret)
		goto out_err;

697
	if (!is_new_memtype_allowed(start, size, req_type, new_type))
698 699
		goto out_free;

700
	if (kernel_map_sync_memtype(start, size, new_type) < 0)
701 702 703 704 705 706 707 708 709 710 711 712 713 714 715 716 717 718 719 720 721 722
		goto out_free;

	*type = new_type;
	return 0;

out_free:
	free_memtype(start, end);
	ret = -EBUSY;
out_err:
	return ret;
}

/**
 * io_free_memtype - Release a memory type mapping for a region of memory
 * @start: start (physical address) of the region
 * @end: end (physical address) of the region
 */
void io_free_memtype(resource_size_t start, resource_size_t end)
{
	free_memtype(start, end);
}

723 724 725 726 727 728
pgprot_t phys_mem_access_prot(struct file *file, unsigned long pfn,
				unsigned long size, pgprot_t vma_prot)
{
	return vma_prot;
}

729
#ifdef CONFIG_STRICT_DEVMEM
730
/* This check is done in drivers/char/mem.c in case of STRICT_DEVMEM */
731 732 733 734 735
static inline int range_is_allowed(unsigned long pfn, unsigned long size)
{
	return 1;
}
#else
736
/* This check is needed to avoid cache aliasing when PAT is enabled */
737 738 739 740 741 742
static inline int range_is_allowed(unsigned long pfn, unsigned long size)
{
	u64 from = ((u64)pfn) << PAGE_SHIFT;
	u64 to = from + size;
	u64 cursor = from;

743
	if (!pat_enabled())
744 745
		return 1;

746 747
	while (cursor < to) {
		if (!devmem_is_allowed(pfn)) {
748 749
			pr_info("x86/PAT: Program %s tried to access /dev/mem between [mem %#010Lx-%#010Lx], PAT prevents it\n",
				current->comm, from, to - 1);
750 751 752 753 754 755 756
			return 0;
		}
		cursor += PAGE_SIZE;
		pfn++;
	}
	return 1;
}
757
#endif /* CONFIG_STRICT_DEVMEM */
758

759 760 761
int phys_mem_access_prot_allowed(struct file *file, unsigned long pfn,
				unsigned long size, pgprot_t *vma_prot)
{
762
	enum page_cache_mode pcm = _PAGE_CACHE_MODE_WB;
763

764 765 766
	if (!range_is_allowed(pfn, size))
		return 0;

767
	if (file->f_flags & O_DSYNC)
768
		pcm = _PAGE_CACHE_MODE_UC_MINUS;
769 770 771 772 773 774 775 776 777 778

#ifdef CONFIG_X86_32
	/*
	 * On the PPro and successors, the MTRRs are used to set
	 * memory types for physical addresses outside main memory,
	 * so blindly setting UC or PWT on those pages is wrong.
	 * For Pentiums and earlier, the surround logic should disable
	 * caching for the high addresses through the KEN pin, but
	 * we maintain the tradition of paranoia in this code.
	 */
779
	if (!pat_enabled() &&
780 781 782 783 784
	    !(boot_cpu_has(X86_FEATURE_MTRR) ||
	      boot_cpu_has(X86_FEATURE_K6_MTRR) ||
	      boot_cpu_has(X86_FEATURE_CYRIX_ARR) ||
	      boot_cpu_has(X86_FEATURE_CENTAUR_MCR)) &&
	    (pfn << PAGE_SHIFT) >= __pa(high_memory)) {
785
		pcm = _PAGE_CACHE_MODE_UC;
786 787 788
	}
#endif

789
	*vma_prot = __pgprot((pgprot_val(*vma_prot) & ~_PAGE_CACHE_MASK) |
790
			     cachemode2protval(pcm));
791 792
	return 1;
}
793

794 795 796 797
/*
 * Change the memory type for the physial address range in kernel identity
 * mapping space if that range is a part of identity map.
 */
798 799
int kernel_map_sync_memtype(u64 base, unsigned long size,
			    enum page_cache_mode pcm)
800 801 802
{
	unsigned long id_sz;

803
	if (base > __pa(high_memory-1))
804 805
		return 0;

806 807 808 809 810 811 812
	/*
	 * some areas in the middle of the kernel identity range
	 * are not mapped, like the PCI space.
	 */
	if (!page_is_ram(base >> PAGE_SHIFT))
		return 0;

813
	id_sz = (__pa(high_memory-1) <= base + size) ?
814 815 816
				__pa(high_memory) - base :
				size;

817
	if (ioremap_change_attr((unsigned long)__va(base), id_sz, pcm) < 0) {
818
		pr_info("x86/PAT: %s:%d ioremap_change_attr failed %s for [mem %#010Lx-%#010Lx]\n",
819
			current->comm, current->pid,
820
			cattr_name(pcm),
821
			base, (unsigned long long)(base + size-1));
822 823 824 825 826
		return -EINVAL;
	}
	return 0;
}

827 828 829 830 831
/*
 * Internal interface to reserve a range of physical memory with prot.
 * Reserved non RAM regions only and after successful reserve_memtype,
 * this func also keeps identity mapping (if any) in sync with this new prot.
 */
832 833
static int reserve_pfn_range(u64 paddr, unsigned long size, pgprot_t *vma_prot,
				int strict_prot)
834 835
{
	int is_ram = 0;
836
	int ret;
837 838
	enum page_cache_mode want_pcm = pgprot2cachemode(*vma_prot);
	enum page_cache_mode pcm = want_pcm;
839

840
	is_ram = pat_pagerange_is_ram(paddr, paddr + size);
841

842
	/*
843 844 845
	 * reserve_pfn_range() for RAM pages. We do not refcount to keep
	 * track of number of mappings of RAM pages. We can assert that
	 * the type requested matches the type of first page in the range.
846
	 */
847
	if (is_ram) {
848
		if (!pat_enabled())
849 850
			return 0;

851 852
		pcm = lookup_memtype(paddr);
		if (want_pcm != pcm) {
853
			pr_warn("x86/PAT: %s:%d map pfn RAM range req %s for [mem %#010Lx-%#010Lx], got %s\n",
854
				current->comm, current->pid,
855
				cattr_name(want_pcm),
856
				(unsigned long long)paddr,
857
				(unsigned long long)(paddr + size - 1),
858
				cattr_name(pcm));
859
			*vma_prot = __pgprot((pgprot_val(*vma_prot) &
860 861
					     (~_PAGE_CACHE_MASK)) |
					     cachemode2protval(pcm));
862
		}
863
		return 0;
864
	}
865

866
	ret = reserve_memtype(paddr, paddr + size, want_pcm, &pcm);
867 868 869
	if (ret)
		return ret;

870
	if (pcm != want_pcm) {
871
		if (strict_prot ||
872
		    !is_new_memtype_allowed(paddr, size, want_pcm, pcm)) {
873
			free_memtype(paddr, paddr + size);
874 875 876 877 878 879
			pr_err("x86/PAT: %s:%d map pfn expected mapping type %s for [mem %#010Lx-%#010Lx], got %s\n",
			       current->comm, current->pid,
			       cattr_name(want_pcm),
			       (unsigned long long)paddr,
			       (unsigned long long)(paddr + size - 1),
			       cattr_name(pcm));
880 881 882 883 884 885 886 887
			return -EINVAL;
		}
		/*
		 * We allow returning different type than the one requested in
		 * non strict case.
		 */
		*vma_prot = __pgprot((pgprot_val(*vma_prot) &
				      (~_PAGE_CACHE_MASK)) |
888
				     cachemode2protval(pcm));
889 890
	}

891
	if (kernel_map_sync_memtype(paddr, size, pcm) < 0) {
892 893 894 895 896 897 898 899 900 901 902 903 904 905
		free_memtype(paddr, paddr + size);
		return -EINVAL;
	}
	return 0;
}

/*
 * Internal interface to free a range of physical memory.
 * Frees non RAM regions only.
 */
static void free_pfn_range(u64 paddr, unsigned long size)
{
	int is_ram;

906
	is_ram = pat_pagerange_is_ram(paddr, paddr + size);
907 908 909 910 911
	if (is_ram == 0)
		free_memtype(paddr, paddr + size);
}

/*
912
 * track_pfn_copy is called when vma that is covering the pfnmap gets
913 914 915 916 917
 * copied through copy_page_range().
 *
 * If the vma has a linear pfn mapping for the entire range, we get the prot
 * from pte and reserve the entire vma range with single reserve_pfn_range call.
 */
918
int track_pfn_copy(struct vm_area_struct *vma)
919
{
920
	resource_size_t paddr;
921
	unsigned long prot;
922
	unsigned long vma_size = vma->vm_end - vma->vm_start;
923
	pgprot_t pgprot;
924

925
	if (vma->vm_flags & VM_PAT) {
926
		/*
927 928
		 * reserve the whole chunk covered by vma. We need the
		 * starting address and protection from pte.
929
		 */
930
		if (follow_phys(vma, vma->vm_start, 0, &prot, &paddr)) {
931
			WARN_ON_ONCE(1);
932
			return -EINVAL;
933
		}
934 935
		pgprot = __pgprot(prot);
		return reserve_pfn_range(paddr, vma_size, &pgprot, 1);
936 937 938 939 940 941 942 943 944 945
	}

	return 0;
}

/*
 * prot is passed in as a parameter for the new mapping. If the vma has a
 * linear pfn mapping for the entire range reserve the entire vma range with
 * single reserve_pfn_range call.
 */
946
int track_pfn_remap(struct vm_area_struct *vma, pgprot_t *prot,
947
		    unsigned long pfn, unsigned long addr, unsigned long size)
948
{
949
	resource_size_t paddr = (resource_size_t)pfn << PAGE_SHIFT;
950
	enum page_cache_mode pcm;
951

952
	/* reserve the whole chunk starting from paddr */
953 954 955 956 957 958 959 960
	if (addr == vma->vm_start && size == (vma->vm_end - vma->vm_start)) {
		int ret;

		ret = reserve_pfn_range(paddr, size, prot, 0);
		if (!ret)
			vma->vm_flags |= VM_PAT;
		return ret;
	}
961

962
	if (!pat_enabled())
963 964
		return 0;

965 966 967 968
	/*
	 * For anything smaller than the vma size we set prot based on the
	 * lookup.
	 */
969
	pcm = lookup_memtype(paddr);
970 971 972 973 974

	/* Check memtype for the remaining pages */
	while (size > PAGE_SIZE) {
		size -= PAGE_SIZE;
		paddr += PAGE_SIZE;
975
		if (pcm != lookup_memtype(paddr))
976 977 978
			return -EINVAL;
	}

979
	*prot = __pgprot((pgprot_val(*prot) & (~_PAGE_CACHE_MASK)) |
980
			 cachemode2protval(pcm));
981 982 983 984 985

	return 0;
}

int track_pfn_insert(struct vm_area_struct *vma, pgprot_t *prot,
986
		     pfn_t pfn)
987
{
988
	enum page_cache_mode pcm;
989

990
	if (!pat_enabled())
991 992 993
		return 0;

	/* Set prot based on lookup */
994
	pcm = lookup_memtype(pfn_t_to_phys(pfn));
995
	*prot = __pgprot((pgprot_val(*prot) & (~_PAGE_CACHE_MASK)) |
996
			 cachemode2protval(pcm));
997

998 999 1000 1001
	return 0;
}

/*
1002
 * untrack_pfn is called while unmapping a pfnmap for a region.
1003
 * untrack can be called for a specific region indicated by pfn and size or
1004
 * can be for the entire vma (in which case pfn, size are zero).
1005
 */
1006 1007
void untrack_pfn(struct vm_area_struct *vma, unsigned long pfn,
		 unsigned long size)
1008
{
1009
	resource_size_t paddr;
1010
	unsigned long prot;
1011

1012
	if (!(vma->vm_flags & VM_PAT))
1013
		return;
1014 1015 1016 1017 1018 1019 1020 1021 1022 1023

	/* free the chunk starting from pfn or the whole chunk */
	paddr = (resource_size_t)pfn << PAGE_SHIFT;
	if (!paddr && !size) {
		if (follow_phys(vma, vma->vm_start, 0, &prot, &paddr)) {
			WARN_ON_ONCE(1);
			return;
		}

		size = vma->vm_end - vma->vm_start;
1024
	}
1025
	free_pfn_range(paddr, size);
1026
	vma->vm_flags &= ~VM_PAT;
1027 1028
}

1029 1030 1031 1032 1033 1034 1035 1036 1037 1038
/*
 * untrack_pfn_moved is called, while mremapping a pfnmap for a new region,
 * with the old vma after its pfnmap page table has been removed.  The new
 * vma has a new pfnmap to the same pfn & cache type with VM_PAT set.
 */
void untrack_pfn_moved(struct vm_area_struct *vma)
{
	vma->vm_flags &= ~VM_PAT;
}

1039 1040
pgprot_t pgprot_writecombine(pgprot_t prot)
{
1041
	return __pgprot(pgprot_val(prot) |
1042
				cachemode2protval(_PAGE_CACHE_MODE_WC));
1043
}
1044
EXPORT_SYMBOL_GPL(pgprot_writecombine);
1045

1046 1047 1048 1049 1050 1051 1052
pgprot_t pgprot_writethrough(pgprot_t prot)
{
	return __pgprot(pgprot_val(prot) |
				cachemode2protval(_PAGE_CACHE_MODE_WT));
}
EXPORT_SYMBOL_GPL(pgprot_writethrough);

1053
#if defined(CONFIG_DEBUG_FS) && defined(CONFIG_X86_PAT)
1054 1055 1056

static struct memtype *memtype_get_idx(loff_t pos)
{
1057 1058
	struct memtype *print_entry;
	int ret;
1059

1060
	print_entry  = kzalloc(sizeof(struct memtype), GFP_KERNEL);
1061 1062 1063 1064
	if (!print_entry)
		return NULL;

	spin_lock(&memtype_lock);
1065
	ret = rbt_memtype_copy_nth_element(print_entry, pos);
1066
	spin_unlock(&memtype_lock);
I
Ingo Molnar 已提交
1067

1068 1069 1070 1071 1072 1073
	if (!ret) {
		return print_entry;
	} else {
		kfree(print_entry);
		return NULL;
	}
1074 1075 1076 1077 1078 1079
}

static void *memtype_seq_start(struct seq_file *seq, loff_t *pos)
{
	if (*pos == 0) {
		++*pos;
1080
		seq_puts(seq, "PAT memtype list:\n");
1081 1082 1083 1084 1085 1086 1087 1088 1089 1090 1091 1092 1093 1094 1095 1096 1097 1098 1099 1100 1101 1102
	}

	return memtype_get_idx(*pos);
}

static void *memtype_seq_next(struct seq_file *seq, void *v, loff_t *pos)
{
	++*pos;
	return memtype_get_idx(*pos);
}

static void memtype_seq_stop(struct seq_file *seq, void *v)
{
}

static int memtype_seq_show(struct seq_file *seq, void *v)
{
	struct memtype *print_entry = (struct memtype *)v;

	seq_printf(seq, "%s @ 0x%Lx-0x%Lx\n", cattr_name(print_entry->type),
			print_entry->start, print_entry->end);
	kfree(print_entry);
I
Ingo Molnar 已提交
1103

1104 1105 1106
	return 0;
}

T
Tobias Klauser 已提交
1107
static const struct seq_operations memtype_seq_ops = {
1108 1109 1110 1111 1112 1113 1114 1115 1116 1117 1118 1119 1120 1121 1122 1123 1124 1125 1126 1127
	.start = memtype_seq_start,
	.next  = memtype_seq_next,
	.stop  = memtype_seq_stop,
	.show  = memtype_seq_show,
};

static int memtype_seq_open(struct inode *inode, struct file *file)
{
	return seq_open(file, &memtype_seq_ops);
}

static const struct file_operations memtype_fops = {
	.open    = memtype_seq_open,
	.read    = seq_read,
	.llseek  = seq_lseek,
	.release = seq_release,
};

static int __init pat_memtype_list_init(void)
{
1128
	if (pat_enabled()) {
1129 1130 1131
		debugfs_create_file("pat_memtype_list", S_IRUSR,
				    arch_debugfs_dir, NULL, &memtype_fops);
	}
1132 1133 1134 1135 1136
	return 0;
}

late_initcall(pat_memtype_list_init);

1137
#endif /* CONFIG_DEBUG_FS && CONFIG_X86_PAT */